Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown
CVE-2014-2353
Disclosure Date: May 30, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Cogent DataHub before 7.3.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2014-2352
Disclosure Date: May 30, 2014 (last updated October 05, 2023)
Directory traversal vulnerability in Cogent DataHub before 7.3.5 allows remote attackers to read arbitrary files of unspecified types, or cause a web-server denial of service, via a crafted pathname.
0
Attacker Value
Unknown
CVE-2014-2354
Disclosure Date: May 30, 2014 (last updated October 05, 2023)
Cogent DataHub before 7.3.5 does not use a salt during password hashing, which makes it easier for context-dependent attackers to obtain cleartext passwords via a brute-force attack.
0
Attacker Value
Unknown
CVE-2014-3788
Disclosure Date: May 22, 2014 (last updated October 05, 2023)
Heap-based buffer overflow in the Web Server in Cogent Real-Time Systems Cogent DataHub before 7.3.5 allows remote attackers to execute arbitrary code via a negative value in the Content-Length field in a request.
0
Attacker Value
Unknown
CVE-2014-3789
Disclosure Date: May 22, 2014 (last updated October 05, 2023)
GetPermissions.asp in Cogent Real-Time Systems Cogent DataHub before 7.3.5 allows remote attackers to execute arbitrary commands via unspecified vectors.
0